Job Closed

This listing is no longer active.

ServiceNow logo
ServiceNow

As the AI platform for business transformation, we're putting AI to work across organizations — freeing people for work that matters. Making old tech work with new tech. Reaching across departments, from the front office to the back office and every office in between. Our ambition? To become the AI defining enterprise software company of the 21st century (or "AI DESCO21C," as we like to call it). With more than 8,400+ customers, we serve approximately 90% of the Fortune 500®, and we're proud to be a Fortune 100 Best Companies to Work For® and World's Most Admired Companies™. Explore your future career with us, visit www.careers.servicenow.com From Fortune. ©2026 Fortune Media IP Limited. All rights reserved. Used under license.

Risk Manager

RiskRiskFull TimeRemoteLeadTeam 10,001+Since 2004H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

71 days ago

Salary

$114K - $199K / year

Seniority

Lead

No structured requirement data.

Job Description

Risk Manager

ServiceNow

Company Description It all started in sunny San Diego, California in 2004 when a visionary engineer, Fred Luddy, saw the potential to transform how we work. Fast forward to today — ServiceNow stands as a global market leader, bringing innovative AI-enhanced technology to over 8,100 customers, including 85% of the Fortune 500®. Our intelligent cloud-based platform seamlessly connects people, systems, and processes to empower organizations to find smarter, faster, and better ways to work. But this is just the beginning of our journey. Join us as we pursue our purpose to make the world work better for everyone. Job Description As the Risk Manager on the Digital Technology GRC team, you will play a central role in advancing our federal compliance posture and GRC program maturity. You will guide initiatives related to CMMC (Cybersecurity Maturity Model Certification) Level 2 readiness, NIST framework implementation, and enterprise-wide risk assessment across infrastructure, endpoints, identity, cloud, and data protection domains. You will partner closely with Security Architecture, IT Operations, SecOps, Internal Audit, Legal & Compliance, and Executives to assess risk, implement controls, and ensure our organization meets the rigorous standards required for federal contracting. You will drive compliance and risk management across key areas such as: - CMMC 2.0 Level 2 Assessment Readiness & Certification - NIST SP 800-171 / NIST CSF Control Mapping & Implementation - Enterprise Risk Assessment & Remediation Planning - System Security Plans (SSP) & Plan of Action & Milestones (POA&M) - GRC Process Maturity & Automation - Federal Compliance Documentation & Evidence Management - This is a high-impact, high-visibility role designed for someone who combines deep knowledge of federal cybersecurity frameworks with the ability to translate technical compliance requirements into actionable plans and executive-ready communications. Risk Assessment & Management - Conduct comprehensive risk assessments across infrastructure, endpoints, identity management, data protection, and cloud environments. - Identify, document, and track security gaps and remediation activities in the enterprise risk register. - Perform control effectiveness testing and support continuous monitoring initiatives to ensure ongoing compliance posture. - Cross-Functional Collaboration & Communication - Partner with Security Architecture, IT Operations, SecOps, Internal Audit, and Legal & Compliance to align security controls and risk mitigation strategies. - Translate complex technical findings and compliance status into executive-ready reports, dashboards, and briefings for senior principals. - Act as a subject matter expert for CMMC and NIST compliance across the organization, providing guidance and training to stakeholders. GRC Program & Process Maturity - Support the development and maturation of GRC processes, including policy management, control mapping, audit support, and evidence management workflows. - Evaluate and recommend GRC tooling and automation opportunities to increase efficiency and accuracy of compliance operations. - Contribute to enterprise-wide assessment campaigns and support regulatory change management activities. What You Get to Do in This Role ServiceNow Platform & GRC Tooling - Leverage ServiceNow IRM (Integrated Risk Management) modules — including Risk Management, Policy & Compliance Management, Audit Management, and Vendor Risk Management — to manage and operationalize compliance workflows. - Utilize ServiceNow SecOps (Security Incident Response, Vulnerability Response), CMDB/APM, ITSM, and IT Asset Management to support integrated security and compliance operations. - Build and maintain GRC dashboards, reports, and Performance Data views to provide executive visibility into risk posture, control coverage, and compliance status. - Drive workflow automation within the ServiceNow platform to streamline evidence collection, control testing, risk scoring, and remediation tracking. Risk Assessment & Management - Conduct comprehensive risk assessments across infrastructure, endpoints, identity management, data protection, and cloud environments. - Identify, document, and track security gaps and remediation activities in the enterprise risk register. - Perform control effectiveness testing and support continuous monitoring initiatives to ensure ongoing compliance posture. - Cross-Functional Collaboration & Communication - Partner with Security Architecture, IT Operations, SecOps, Internal Audit, and Legal & Compliance to align security controls and risk mitigation strategies. - Translate complex technical findings and compliance status into executive-ready reports, dashboards, and briefings for senior principals - Act as a subject matter expert for CMMC and NIST compliance across the organization, providing guidance and training to stakeholders. GRC Program & Process Maturity - Support the development and maturation of GRC processes including policy management, control mapping, audit support, and evidence management workflows. - Evaluate and recommend GRC tooling and automation opportunities to increase efficiency and accuracy of compliance operations. - Contribute to enterprise-wide assessment campaigns and support regulatory change management activities. - ServiceNow Platform & GRC Tooling - Leverage ServiceNow IRM (Integrated Risk Management) modules — including Risk Management, Policy & Compliance Management, Audit Management, and Vendor Risk Management — to manage and operationalize compliance workflows. - Utilize ServiceNow SecOps (Security Incident Response, Vulnerability Response), CMDB/APM, ITSM, and IT Asset Management to support integrated security and compliance operations. - Build and maintain GRC dashboards, reports, and Performance Data views to provide executive visibility into risk posture, control coverage, and compliance status. - Drive workflow automation within the ServiceNow platform to streamline evidence collection, control testing, risk scoring, and remediation tracking. Qualifications Required - 7–8 years of experience in cybersecurity, information security, GRC, or federal compliance roles. - Deep working knowledge of CMMC 2.0, NIST SP 800-171, NIST SP 800-53, and NIST Cybersecurity Framework (CSF). - Hands-on experience leading or supporting CMMC assessments, including application scoping, control mapping, gap analysis, and remediation planning. - Strong understanding of federal contracting compliance requirements, including DFARS 252.204-7012 and CUI (Controlled Unclassified Information) handling. - Experience developing and maintaining SSPs, POA&Ms, and compliance documentation for federal authorization. - Proven ability to conduct risk assessments across enterprise environments covering endpoints, identity, cloud, and data protection. - Working knowledge of the ServiceNow platform, including familiarity with IRM, SecOps, CMDB, or ITSM modules for managing security and compliance workflows. - Excellent written and verbal communication skills with demonstrated ability to present technical findings to executive audiences. - Experience working cross-functionally with IT, security, audit, and legal teams in a large enterprise environment. Preferred - Professional certifications such as CISSP, CISM, CISA, CAP (Certified Authorization Professional), or CMMC Registered Practitioner (RP). - Hands-on experience with ServiceNow IRM (Integrated Risk Management), including Risk Management, Policy & Compliance Management, Audit Management, and Vendor Risk Management modules. - Experience with broader ServiceNow platform capabilities including CMDB/APM, SecOps (Security Incident Response, Vulnerability Response), ITSM, and IT Asset Management for integrated security and compliance workflows. - Familiarity with ServiceNow reporting, dashboards, Performance Analytics, and workflow automation to drive GRC program efficiency and executive visibility. - Familiarity with FedRAMP, FISMA, FIPS 140-2/3 encryption requirements, and DoD cybersecurity policies. - Background in evaluating dual-environment architectures (e.g., O365 commercial vs. GCC High) for compliance alignment. - Experience with SIEM, EDR (e.g., CrowdStrike), vulnerability management tools, and security architecture review processes. - Knowledge of identity and access management frameworks, including Okta, Active Directory, and SailPoint integrations. - Prior experience in enterprise-scale assessment campaigns involving 50+ applications or business units. - Experience in building or consuming continuous monitoring, control hygiene, or AI-enabled risk/issue automation workflows (e.g., automated control testing, continuous controls monitoring, risk scoring, AI/ML-driven issue remediation). For positions in this location, we offer a base pay of $114,200 - $199,900, plus equity (when applicable), variable/incentive compensation and benefits. Sales positions generally offer a competitive On Target Earnings (OTE) incentive compensation structure. Please note that the base pay shown is a guideline, and individual total compensation will vary based on factors such as qualifications, skill level, competencies, and work location. We also offer health plans, including flexible spending accounts, a 401(k) Plan with company match, ESPP, matching donations, a flexible time away plan and family leave programs. Compensation is based on the geographic location in which the role is located and is subject to change based on work location. Additional Information Work Personas We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here. To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third-party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact [email protected] for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. From Fortune. ©2025 Fortune Media IP Limited. All rights reserved. Used under license. - Employee Type: Regular - Region: AMS - North America and Canada - Work Persona: Flexible or Remote

Related Categories

Related Job Pages

More Risk Jobs

Capco logo

Senior Java Developer - Market Risk (She/ He/ They)

Capco

Capco, a Wipro company, is a management & technology consultancy dedicated to the financial services & energy industries

Risk71 days ago
Full TimeRemoteTeam 1,001-5,000Since 1998H1B Sponsor

CAPCO POLAND *We are looking for Poland based candidate. Capco is a fully independent, global management and technology consultancy. For 25 years we have combined innovative thinking with deep industry knowledge to deliver business consulting, digital transformation and technology services to Finance and Energy markets. Our collaborative and efficient approach helps clients reduce costs and manage risk and regulatory change while increasing revenues. We are thinkers, innovators, and disruptors. We are small enough to care but large enough to matter. We also are experts in focused on development, automation, innovation, and long-term projects in financial services. In Capco, you can code, write, create, and live at your maximum capabilities without getting dull, tired, or foggy. ROLE OVERVIEW: The Senior Java Developer will play a key role in delivering high-visibility strategic initiatives, with a primary focus on designing and implementing components within the MRP platform. The engineer will be responsible for providing scalable, robust, and fault-tolerant solutions that address both current and future business needs. A crucial part of the engagement includes proposing and developing innovative solutions in an iterative manner—quickly delivering functional versions to gather feedback and advising on the full rollout. We are looking for an experienced professional with a strong technical mindset, a pragmatic and delivery-driven approach, and the ability to independently bring continuous business value through effective and innovative use of technology. The collaboration will take place within a dynamic, global environment, involving close interaction with business analysts, project managers, stakeholders, and other technical experts across multiple locations. TECH STACK Must Have: Java 11/17, Spring, Microservices, JUnit, Mockito, Cucumber, Jenkins Nice to Have: Market risk domain experience SKILLS & EXPERIENCE - Expertise in Core Java (JDK 11/17), Collections, Threading, JDBC. - Strong experience with Object-Oriented Programming (OOP), Design Principles, and Design Patterns. - Hands-on experience with Spring Framework (Spring Boot, Spring Data, Hibernate), Web Services, REST APIs, and Microservices architecture. - Proficiency in unit testing, integration testing, and behavior testing using tools such as JUnit, Mockito, Cucumber. - Strong experience with Java IDEs such as IntelliJ IDEA, Eclipse, VS Code - Skilled in Java debugging, profiling, and performance tuning - Experience with OLTP and OLAP systems (preferably PostgreSQL and Clickhouse) - Good exposure to Java coding standard, clean code, code review - Knowledge of Domain-Driven Design and Microservices Architecture - Proficient in Shell scripting, and working in a UNIX/LINUX environment - Familiarity with authentication and authorisation frameworks and tools (e.g. AD/LDAP, OAuth2, SSO, Kerberos, JWT, Spring Security) - Experience JIRA, Git / Bitbucket, and Gitflow branching strategy - Familiarity with build tools, CI/CD pipelines, and code quality tools (e.g., Maven, Jenkins, SonarQube, Artifactory) Additionally but not mandatory - very good to have - Java certification (preferred but not essential) - Experience with containers and Container Platforms (e.g., Docker, Podman, Kubernetes, OpenShift, AWS EKS) - Knowledge of Sprint Cloud stack (e.g., Spring Cloud Config, Gateway, Eureka, Stream, Data Flow) - Experience with monitoring, log analysis tools (e.g., ELK stack, Splunk) - Knowledge in AWS S3 and its compatible storage systems such as HCP and MinIO - Familiarity with messaging technologies such (e.g., Kafka, RabbitMQ, Solace) - Experience with Workflow Engines (e.g., jBPM, Activiti, Camunda) - Knowledge in Big Data technologies (e.g., Hadoop, HDFS, Spark) - Cloud platform experience (AWS, Azure). - Experience with front-end development (e.g., HTML5, JavaScript, ReactJS) - Knowledge of OLAP technologies (e.g., ActivePivot, ClickHouse, Exasol, SSAS, MDX/XMLA NON-TECHNICAL SKILLS - Strong communication and collaboration skills in a global team environment. - Proven ability to manage multiple priorities, make decisions independently, and meet deadlines under pressure. - Strong problem-solving, analytical, and organizational abilities. We offer a flexible collaboration model based on a B2B contract, with the opportunity to work on diverse projects. RECRUITMENT PROCESS - HR interview with Recruiter - Technical Screening interview with Capco Engineering Team - Code Challenge - Client interview - Feedback and Offer We have been informed of several recruitment scams targeting the public. We strongly advise you to verify identities before engaging in recruitment related communication. All official Capco communication will be conducted via a Capco recruiter.

Poland
Job Closed
Capital One logo

Manager, Capital Markets & Risk-Treasury Management (Remote-Eligible)

Capital One

At Capital One, we think and work like a tech company, using our digital fluency to transform everything about the customer experience. We’re bending data to our will, and turning a stodgy industry on its head. That’s reflected in our ranking as the number one business technology innovator in the U.S. in the 2016 InformationWeek Elite 100.

Risk71 days ago
Full TimeRemoteTeam 10,001+Since 1994H1B Sponsor

Manager, Capital Markets & Risk-Treasury Management (Remote-Eligible) The Treasury Systems & Business Solutions team, a department within Treasury that falls under Capital Markets and Risk organization, consists of business process and system experts who are passionate about creating a simple, well-integrated and intelligent solution that enables superior decision making and best-in-class execution, operations, and risk management for the Treasury department. We are responsible for maintaining Treasury software applications that support both business users and data consumers, while influencing strategic technology decisions. Working back from business imperatives, and internal customer needs, we lead Agile teams to implement new products for Treasury , develop new capabilities, and deliver high quality data. We are looking for a Manager to work with the Agile pod in delivering cloud-based solutions for the overall business intent through close collaboration across internal partners. This role will be responsible for leading the necessary customer interviews and analysis to ground the problems to be solved, running impact analysis, and working with Agile teams to define, test and implement solutions. Our ideal candidate should possess strong system configuration knowledge for SimCorp Dimension to help build a strong system support team and to expand the usage of SimCorp across Capital One finance teams. General Responsibilities: - Leading team development on training and talent development - Collaborate with business stakeholders across Front Office, Middle Office, and Accounting, Product and Technology partners on solution development, process enhancements, and production issue resolution - Work with business stakeholders to define requirements and document user acceptance test cases, negative test scenarios - Define solutions (requirements, designs, services, recommendations) to achieve required business outcomes - Perform configuration changes to the SimCorp Dimension system - Own the development, maintenance, management, and delivery of analysis, user manuals, training materials, and technical specifications - Own the integrity of the solution through participation in software testing and quality assurance activities - Participate in release planning activities and perform required validation - Learn and leverage cloud based data management tools to create analytics, reporting, and automation solutions for internal customers' case - Communicate progress and status to team members and stakeholders - Identify roadblocks to projected timeline and present possible solutions - Collaborate with cross functional teams to launch new initiatives - Lead large cross functional projects and work with senior level stakeholders Capital One is open to hiring a Remote Employee for this opportunity. Basic Qualifications: - Bachelor's Degree or military experience - At least 5 years of SimCorp Dimension configuration experience - At least 5 years of experience in business systems analysis - At least 5 years of experience with Capital Markets, Finance, or a combination Preferred Qualifications: - At least 8 years of experience using SimCorp Dimension's IBOR and ABOR platforms - Experience in SimCorp technical functions, such as Communication Server, Data Format Extracts, Data Format Setups, Services, etc - At least 8 years of experience in Capital Markets, Accounting, Front Office, Trade Operations in fixed income securities, or a combination - At least 1 year of experience with programming languages At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. Remote (Regardless of Location): $149,800 - $171,000 for Manager, Capital Markets & Risk McLean, VA: $164,800 - $188,100 for Manager, Capital Markets & Risk Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Virginia
$149.8K - $188.1K / year
Upstart logo

Compliance Associate Manager, Third Party Risk Oversight

Upstart

Our mission is to enable effortless credit based on true risk.

Risk71 days ago
Full TimeRemoteTeam 1,001-5,000Since 2012H1B Sponsor

About Upstart At Upstart, we’re united by a mission that matters: to radically reduce the cost and complexity of borrowing for all Americans. Every day, we bring creativity, experimentation, and advanced AI to reshape access to credit, helping millions move forward financially with clarity and confidence. As the leading AI lending marketplace, we partner with banks and credit unions to expand access to affordable credit through technology that’s both radically intelligent and deeply human. Our platform runs over one million predictions per borrower using more than 1,800 signals, powering smarter, fairer decisions for millions of customers. But the numbers only hint at the impact. Every idea, every voice, and every contribution moves us closer to a world where credit never stands between people and their financial progress. We’re proudly digital-first, giving most Upstarters the flexibility to do their best work from wherever they thrive, alongside teammates across 80+ cities in the US and Canada. Digital-first doesn’t mean distant. We’re intentional about in-person connection through team onsites, planning sessions, and moments that spark creativity and trust. And whether you choose to work primarily from home or collaborate in-person from one of our offices in Columbus, Austin, the Bay Area, or New York City (opening Summer 2026), you’ll have the support to work in the way that works best for you. If you’re energized by tackling meaningful problems, excited to innovate with purpose, and motivated by work that truly matters, we’d love to hear from you. The Team: Upstart’s Third Party Risk Management (TPRM) team ensures that third-party relationships are identified, assessed, monitored, and governed in alignment with regulatory expectations, interagency guidance, and company risk appetite. The team partners cross-functionally to enable safe, scalable supplier usage while strengthening operational resilience. The Role: As a Compliance Associate Manager, Third Party Risk Oversight you will execute and enhance third-party supplier due diligence, risk assessments, control effectiveness, support ongoing monitoring activities, and drive improvements in risk processes. You will operate with moderate independence, use AI-driven tooling, apply risk based judgment, and collaborate with business and other risk stakeholders to ensure supplier risks are appropriately managed. How you’ll make an impact - Lead and oversee execution of third-party supplier risk assessments across due diligence, onboarding, and ongoing monitoring - Provide day-to-day guidance, prioritization, and quality review for team members conducting risk assessments - Synthesize supplier risks across engagements to drive risk-based decisions and influence business stakeholders on mitigation strategies - Act as an escalation point for complex or high-risk supplier issues, ensuring appropriate risk treatment and documentation - Own and enhance TPRM frameworks, methodologies, and tooling to improve scalability, consistency, and effectiveness - Partner with Legal, Compliance, Security, and business teams to drive alignment on risk standards and ensure consistent application across the supplier lifecycle Minimum Qualifications - 5+ years of experience in risk management, third-party risk, audit, or compliance and management positions - 2+ years of experience leading projects, programs, or team members in a risk or control function - Experience overseeing vendor risk assessments or control evaluations across multiple risk domains - Familiarity with regulatory expectations (e.g., OCC, FDIC, CFPB, Interagency Guidance on Third-Party Relationships: Risk Management ) - Experience working with risk management tools or vendor management systems (e.g., Zip, Kobalt, ProcessUnity, Archer, ServiceNow) Preferred Qualifications - Knowledge of designing and scaling third-party risk management programs and frameworks - Ability to assess complex supplier risk scenarios and make risk-based decisions or recommendations - Experience influencing cross-functional stakeholders and driving alignment on risk outcomes - Experience supporting audits and regulatory exams with direct stakeholder engagement - Familiarity with data analysis, reporting, and automation to enhance risk insights and program maturity - Experience working in financial services or fintech environments with proven record of using AI and/or automation to support risk management activities Position location This role is available in the following locations: Remote Time zone requirements The team operates on the East/West coast time zones. Travel requirements As a digital first company, the majority of your work can be accomplished remotely. The majority of our employees can live and work anywhere in the U.S but are encouraged to to still spend high quality time in-person collaborating via regular onsites. The in-person sessions’ cadence varies depending on the team and role; most teams meet once or twice per quarter for 2-4 consecutive days at a time. What you'll love: - Competitive Compensation (base + bonus & equity) - Comprehensive medical, dental, and vision coverage with Health Savings Account contributions from Upstart - Generous 401(k) plan with Upstart matching $2 for every $1 contributed, up to $15,000 per year - Employee Stock Purchase Plan (ESPP) - Life and disability insurance - Generous holiday, vacation, sick and safety leave - Supportive parental, family care, and military leave programs - Annual wellness, technology & ergonomic reimbursement programs - Social activities including team events and onsites, all-company updates, employee resource groups (ERGs), and other interest groups such as book clubs, fitness, investing, and volunteering - Catered lunches + snacks & drinks when working in offices #LI-REMOTE #LI-Associate At Upstart, your base pay is one part of your total compensation package. The anticipated base salary for this position is expected to be within the below range. Your actual base pay will depend on your geographic location–with our “digital first” philosophy, Upstart uses compensation regions that vary depending on location. Individual pay is also determined by job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process. In addition, Upstart provides employees with target bonuses, equity compensation, and generous benefits packages (including medical, dental, vision, and 401k). United States | Remote - Anticipated Base Salary Range $115,800—$160,100 USD What you'll love At Upstart, our benefits are designed to support your health, financial well-being, family, and personal growth. Here’s what you can expect: - Competitive compensation, including base pay, bonus opportunities, and annual equity grants that vest quarterly - Generous 401(k) plan with Upstart matching $2 for every $1 contributed, up to $15,000 per year - Employee Stock Purchase Plan (ESPP) with discounted stock purchase options for eligible employees - Affordable medical, dental, and vision coverage, with multiple plan options - Upstart covers 90% to 100% of the cost depending on the plans you choose - Health Savings Account contributions from Upstart for eligible plans - Income protection benefits, including company-paid Basic Life, AD&D, and Short- and Long-Term Disability coverage, with options to purchase supplemental coverage - Paid time off, sick and safe time, and company holidays - Paid family and parental leave to support caregiving and major life moments - Family-centered benefits through Carrot and Cleo, supporting fertility, parenthood, and caregiving - Employee Assistance Program (EAP) offering mental health support and life-centered resources - Financial wellness resources, including access to financial planning tools and a financial concierge service - Annual wellness allowance to support your physical and emotional well-being and personal development, based on what matters most to you - Annual productivity allowance to invest in relevant tools and resources you need to do your best work, no matter where you work from - Connection and community through team events and onsites, all-company updates, and employee resource groups (ERGs) - Onsite perks, including catered lunches and fully stocked micro-kitchens when working from one of our four offices, located in the Bay Area, Austin, Columbus, and New York City (opening Summer 2026!). Upstart is a proud Equal Opportunity Employer. Just as we are dedicated to improving access to affordable credit for all, we are committed to inclusive and fair hiring practices. If you require reasonable accommodation in completing an application, interviewing, completing any pre-employment testing, or otherwise participating in the employee selection process, please email candidate_accommodations@upstart.com https://www.upstart.com/candidate_privacy_policy

United States
$115.8K - $160.1K / year
Job Closed
Risk71 days ago
Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

We’re building a relationship-oriented bank for the modern world. We need talented, passionate professionals who are dedicated to doing what’s right for our clients. At CIBC, we embrace your strengths and your ambitions, so you are empowered at work. Our team members have what they need to make a meaningful impact and are truly valued for who they are and what they contribute. To learn more about CIBC, please visit CIBC.com What you’ll be doing CIBC’s Technology Infrastructure and Innovation (TI&I) business spans Technology, Information Security, Deposit Operations, Loan Operations, Payment Operations, Data Management Office, Corporate Real Estate, Corporate Security, Procurement, Operational Resilience, and Risk & Governance. TI&I drives operational excellence by managing the technology and operations required to run the bank, enabling transformation through innovation, and supporting growth objectives with flawless execution of strategic initiatives. The Governance and Oversight (G&O 1B) team within TI&I operates as a First Line team in the Three Lines of Defense model, enabling risk discipline, business resiliency, and value creation while strengthening the CIBC Risk Management Framework. At CIBC we enable the work environment most optimal for you to thrive in your role.  Details on your work arrangement (proportion of on-site and remote work) will be discussed at the time of your interview As the Senior Consultant, Strategic Planning Front Line Risk Management & Risk Assessment, you will lead the transformation of the US TI&I’s Risk Control Self-Assessment (RCSA) program. You will help develop Governance, Risk & Control (GRC) strategies around RCSA program management, ensuring that the Program is aligned with business objectives, Bank standards, and regulatory requirements. - GRC Strategy Leadership: Develop, execute and continually assess comprehensive GRC strategies aligned with enterprise risk appetite, business goals, emerging risks and regulatory expectations. Maintain and enhance operating models for strong collaboration, accountability, and transparency around the RCSA Program. - RCSA Program Management : Design and implement framework and strategy to drive efficiencies and initiatives around RCSA management. Collaborate with business stakeholders and 2LOD to drive efficiencies and continuous monitoring to ensure program and standard requirements. Utilize data analytics and AI to strengthen the program. Assist with reporting provide actionable insights to senior leadership. - Collaborating with partners across all levels and geographies: Facilitate cross-functional coordination by working closely with internal stakeholders within US TI&I, US, and in Canada, across all three lines of defense, at various levels of seniority. - Driving continuous improvement through technology and innovation: Identify opportunities to enhance efficiencies by leveraging new technologies, automation, and AI tools. Streamline processes, reduce manual effort, and improve overall program effectiveness.  - Supporting teams with training, consultation, and tools: Serve as a trusted advisor on risk management, specifically the RCSA program and various risk matters. Provide support to business partners by fostering a positive risk culture of awareness and accountability.  How you’ll succeed - Effective communication: Deliver insights and recommendations in a manner that resonates with diverse audiences, including senior leadership. - Relationship Management: Build trust and credibility with stakeholders by demonstrating expertise, authenticity, and a collaborative approach. Foster an inclusive and collaborative environment that drives collective success across all three lines of defense. Collaborate with senior leadership to identify opportunities for program optimization and deliver effective support. - Continuous improvement: Inspire a culture of continuous improvement by leveraging leadership behaviors, innovative methods, and enabling technologies. Drive initiatives that enhance the efficiency, effectiveness, and sustainability. Utilize critical and analytical thinking and adopt innovative strategies to improve the efficiency of the bank’s current processes. Provide expert guidance to Lines of Businesses on risk self-assessments serving as a thoughtful leader by applying advanced concepts to drive program maturity and alignment with operational risk standards. - Managing multiple, complex priorities in a fast-paced environment: Simultaneously handle numerous initiatives and deadlines with the ability to shift priorities quickly. Proactively identify potential issues, escalate concerns, and drive timely resolution to ensure compliance and mitigate risk.  Operating with minimal direction and extensive risk management expertise. Who you are - You are experienced risk professional with 7+ years of progressive experience in Risk Management, Risk Assessment, and governance within the financial industry. You have proven experience in developing, leading, and executing GRC strategies in a fast-price financial services environment. Preferred candidate will be operating with minimal direction and extensive risk management expertise. - You are a Strategic Thinker who has the ability to see the big picture, anticipate future trends, and develop long-term plans that align with organizational goals by applying critical and analytical thinking. You are skilled at analyzing complex situations, identifying opportunities and risks, and making informed decisions that drive sustainable success. - You are an Innovative Problem Solver who approaches challenges with creativity and resourcefulness, developing original solutions that address issues effectively and drive continuous improvement. You thrive in dynamic environments, leveraging new ideas and perspectives to overcome obstacles and deliver impactful results. You’re an idea generator who can execute on those ideas and lead cross-functional teams toward the finish line. - You're driven by collective success. You know that collaboration can transform a good idea into a great one. You thrive in a team environment, leveraging the power of collaboration to achieve shared goals and you excel at building constructive and collaborative relationships, inspiring outcomes, and fostering trust through respect and authenticity. - You give meaning to data. You excel at analyzing and interpreting data, delivering valuable insights and recommendations to a wide range of audiences by leveraging data tools such as Power BI. - Values matter to you. You bring your real self to work, and you live our values - trust, teamwork, and accountability. California residents — your privacy rights regarding your actual or prospective employment At CIBC, we offer a competitive total rewards package. This role has an expected salary range of $130,000 - $145,000 USD for the market based on experience, qualifications, and location of the position (salary ranges for various locations will be discussed during the interview). The successful candidate may be eligible to participate in the relevant business unit’s incentive compensation plan, which may also include a discretionary bonus component. CIBC offers a full range of benefits and programs to meet our employee’s needs; including Medical, Dental, Vision, Health Savings Account, Life Insurance, Disability, and Other Insurance Plans, Paid Time Off (including Sick Leave, Parental Leave and Vacation), Holidays and 401(k), in addition to other special perks reserved for our team members. #LI-TA *This job is not eligible for employment sponsorship*. What CIBC Offers At CIBC, your goals are a priority. We start with your strengths and ambitions as an employee and strive to create opportunities to tap into your potential. We aspire to give you a career, rather than just a paycheck. - We work to recognize you in meaningful, personalized ways including a competitive salary, incentive pay, banking benefits, a benefits program*, a vacation offering, wellbeing support, and MomentMakers, our social, points-based recognition program. - Our spaces and technological toolkit will make it simple to bring together great minds to create innovative solutions that make a difference for our clients. - We cultivate a culture where you can express your ambition through initiatives like Purpose Day; a paid day off dedicated for you to use to invest in your growth and development. *Subject to plan and program terms and conditions What you need to know - CIBC is committed to creating an inclusive environment where all team members and clients feel like they belong. We seek applicants with a wide range of abilities and we provide an accessible candidate experience. If you need accommodation, please contact Mailbox.careers-carrieres@cibc.com - You need to be legally eligible to work at the location(s) specified above and, where applicable, must have a valid work or study permit. - We may ask you to complete an attribute-based assessment and other skills tests (such as simulation, coding, MS Office). Our goal for the application process is to get to know more about you, all that you have to offer, and give you the opportunity to learn more about us. Job Location IL-Illinois - Virtual Employment Type Regular Weekly Hours 40 Skills Business Controlling, Client Service, Compliance Monitoring, Group Problem Solving, Project Management, Regulatory Requirements, Risk Management Assessment, Work Collaboratively

United States + 1 moreAll locations: United States | Bermuda
$130K - $145K / year
Job Closed